GitHub topics: appsec-tutorials
whitespots/devsecops-docs
Our documentation
Size: 811 MB - Last synced at: 3 days ago - Pushed at: 3 days ago - Stars: 0 - Forks: 0

roottusk/vapi
vAPI is Vulnerable Adversely Programmed Interface which is Self-Hostable API that mimics OWASP API Top 10 scenarios through Exercises.
Language: HTML - Size: 23.8 MB - Last synced at: 11 days ago - Pushed at: 5 months ago - Stars: 1,261 - Forks: 318

HXSecurity/DongTai-agent-java
Java Agent is a Java application probe of DongTai IAST, which collects method invocation data during runtime of Java application by dynamic hooks.
Language: Java - Size: 30.6 MB - Last synced at: 16 days ago - Pushed at: over 1 year ago - Stars: 685 - Forks: 206

yevh/VulnPlanet
Vulnerable code snippets with fixes for Web2, Web3, API, iOS, Android and Infrastructure-as-Code (IaC)
Size: 2.29 MB - Last synced at: about 1 month ago - Pushed at: 10 months ago - Stars: 159 - Forks: 22

sahildari/secure-coding-examples
This repository provides practical examples for developers and security professionals seeking to implement secure coding practices in their applications and operational workflows. It covers common security vulnerabilities such as path manipulation, file upload flaws, and input validation issues, offering robust solutions to mitigate these risks.
Language: Java - Size: 148 KB - Last synced at: about 1 month ago - Pushed at: about 1 month ago - Stars: 0 - Forks: 0

jassics/security-study-plan
Complete Practical Study Plan to become a successful cybersecurity engineer based on roles like Pentest, AppSec, Cloud Security, DevSecOps and so on...
Size: 3.76 MB - Last synced at: 2 months ago - Pushed at: 4 months ago - Stars: 4,567 - Forks: 576

security-prince/Resources-for-Application-Security
Some good resources for getting started with application security
Size: 50.8 KB - Last synced at: 26 days ago - Pushed at: about 4 years ago - Stars: 142 - Forks: 23

HXSecurity/DongTai-Plugin-IDEA
Dongtai-plugin-idea is an IDEA plug-in developed by DongTai team for Java Web application developers. This plug-in provides functions such as vulnerability detection and code audit during application development, enabling developers to find application vulnerabilities more intuitively, quickly and in real time during application development.
Language: Java - Size: 14.3 MB - Last synced at: about 1 month ago - Pushed at: over 1 year ago - Stars: 27 - Forks: 18

rstatsinger/contrast-java-webgoat-docker
Contrast Security Instrumentation for Dockerized Webgoat, with lab instructions.
Language: Dockerfile - Size: 25 MB - Last synced at: 9 months ago - Pushed at: almost 3 years ago - Stars: 27 - Forks: 21

zzzteph/appsec.study
AppsecStudy - open-source elearning management system for information security
Language: JavaScript - Size: 5.45 MB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 4 - Forks: 2

jeroenvdmeer/cyberescaperoom
A playful introduction to web application vulnerabilities in the OWASP Top 10 while relying only on developer tools offered by modern web browsers.
Language: JavaScript - Size: 3.17 MB - Last synced at: 17 days ago - Pushed at: over 2 years ago - Stars: 2 - Forks: 0

HXSecurity/DongTai-engine 📦
This repository has been merged into https://github.com/HXSecurity/DongTai. DongTai-engine used to analyze the method data collected by the probe, analyze whether there are vulnerabilities in API requests through the algorithm of taint tracking, and is also responsible for timing tasks, including: expired log cleaning, probe state maintenance, data packet replay processing, etc.
Language: Python - Size: 16.4 MB - Last synced at: almost 2 years ago - Pushed at: about 3 years ago - Stars: 18 - Forks: 25

SecuringTheStack/tutorials
Additional Resources For Securing The Stack Tutorials
Language: JavaScript - Size: 17.9 MB - Last synced at: over 1 year ago - Pushed at: over 6 years ago - Stars: 38 - Forks: 17

filipkarc/sqli-postgres-rce-privesc-hacking-playground
Application with SQL Injection vulnerability and possible privilege escalation. Free vulnerable app for ethical hacking / penetration testing training.
Language: PHP - Size: 3 MB - Last synced at: over 2 years ago - Pushed at: over 2 years ago - Stars: 58 - Forks: 12

we45/ZAP-Mini-Workshop
Interactive IPython Notebook to demonstrate OWASP ZAP's API and Scripting Functions - OWASP ZAP 2.8.0
Language: Jupyter Notebook - Size: 824 KB - Last synced at: over 2 years ago - Pushed at: over 2 years ago - Stars: 37 - Forks: 13

thegoodparts/appsec
The Good Parts of Application Security: learn how to build and test secure webapps
Language: Java - Size: 4.35 MB - Last synced at: over 2 years ago - Pushed at: over 5 years ago - Stars: 1 - Forks: 0

httpnotonly/AppSec-guidelines-ru
Гайды на русском
Size: 2.93 KB - Last synced at: about 2 years ago - Pushed at: over 6 years ago - Stars: 0 - Forks: 0
